Jump to content

Infected by Snap.do Desktop Highjacker


Recommended Posts

I think I'm doing this correctly.  I have copy and pasted both of my logs below.

 

Thank you!

 

DDS (Ver_2012-11-20.01) - NTFS_AMD64 
Internet Explorer: 10.0.9200.16537  BrowserJavaVersion: 10.45.2
Run by fran0_000 at 20:37:59 on 2013-12-27
Microsoft Windows 8  6.2.9200.0.1252.1.1033.18.3986.2260 [GMT -8:00]
.
AV: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Norton Internet Security *Disabled/Updated* {63DF5164-9100-186D-2187-8DC619EFD8BF}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: Norton Internet Security *Enabled/Updated* {D8BEB080-B73A-17E3-1B37-B6B462689202}
FW: Norton Internet Security *Enabled* {5BE4D041-DB6F-1935-0AD8-24F3E73C9FC4}
.
============== Running Processes ===============
.
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\system32\dwm.exe
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Program Files\IDT\WDM\STacSV64.exe
C:\Windows\system32\Hpservice.exe
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k apphost
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files (x86)\Anvisoft\Anvi Smart Defender\ASDSrv.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
C:\Windows\system32\dashost.exe
C:\Program Files\Intel\iCLS Client\HeciServer.exe
C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Windows\system32\taskhostex.exe
C:\Windows\Explorer.EXE
C:\Program Files\Classic Shell\ClassicStartMenu.exe
C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16.4.4206.722_x64__8wekyb3d8bbwe\LiveComm.exe
C:\Program Files\Common Files\microsoft shared\ink\TabTip.exe
C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\TabTip32.exe
C:\Windows\system32\SearchIndexer.exe
C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE
C:\Windows\System32\RuntimeBroker.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\IDT\WDM\sttray64.exe
C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe
C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Anvisoft\Anvi Smart Defender\ASDTray.exe
C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
C:\Program Files (x86)\Hewlett-Packard\HP Connected Remote\HPConnectedRemoteService.exe
C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe
C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
C:\Program Files (x86)\Intel\Intel® Management Engine Components\FWService\IntelMeFWService.exe
C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe
C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe
C:\Program Files (x86)\Hewlett-Packard\HP Connected Remote\HPConnectedRemoteUser.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\PrintIsolationHost.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\System32\cscript.exe
.
============== Pseudo HJT Report ===============
.
uSearch Bar = Preserve
mWinlogon: Userinit = userinit.exe,
BHO: PETN: {0C851AC4-D9E3-489A-A35F-97F0D6985A18} - 
BHO: ExplorerBHO Class: {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer32.dll
BHO: Norton Identity Protection: {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\coieplg.dll
BHO: Norton Vulnerability Protection: {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\ips\ipsbho.dll
BHO: Java Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
BHO: Java Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
BHO: HP Network Check Helper: {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
BHO: ClassicIEBHO Class: {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIEDLL_32.dll
TB: Norton Toolbar: {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\coieplg.dll
TB: Norton Toolbar: {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\coieplg.dll
TB: Classic Explorer Bar: {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll
uRunOnce: [uninstall C:\Users\fran0_000\AppData\Local\Microsoft\SkyDrive\16.4.6010.0727\amd64] C:\Windows\System32\cmd.exe /q /c rmdir /s /q "C:\Users\fran0_000\AppData\Local\Microsoft\SkyDrive\16.4.6010.0727\amd64"
mRun: [RemoteControl10] "C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
mRun: [HP Quick Launch] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
mRun: [HP CoolSense] C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe -byrunkey
mRun: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
mRun: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
mRun: [sunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
mRun: [Anvi Smart Defender] C:\Program Files (x86)\Anvisoft\Anvi Smart Defender\ASDTray.exe
IE: {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
IE: {56753E59-AF1D-4FBA-9E15-31557124ADA2} - C:\Program Files\Classic Shell\ClassicIE_32.exe
TCP: NameServer = 192.168.0.1 205.171.2.25
TCP: Interfaces\{10B66B75-0C3B-480A-B6E1-DAFA2F9CE6AF} : DHCPNameServer = 40.21.1.201 40.21.1.202
TCP: Interfaces\{688CC84A-5382-4BD3-B0E6-34412431EAAA} : DHCPNameServer = 192.168.0.1 205.171.2.25
TCP: Interfaces\{688CC84A-5382-4BD3-B0E6-34412431EAAA}\16D65627963707F647 : DHCPNameServer = 10.59.1.1
Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
AppInit_DLLs= c:\progra~2\optimi~1\optpro~1.dll
SSODL: WebCheck - <orphaned>
mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
x64-BHO: ExplorerBHO Class: {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer64.dll
x64-BHO: HP Network Check Helper: {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll
x64-BHO: ClassicIEBHO Class: {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIEDLL_64.dll
x64-TB: Classic Explorer Bar: {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer64.dll
x64-Run: [igfxTray] C:\Windows\System32\igfxtray.exe
x64-Run: [HotKeysCmds] C:\Windows\System32\hkcmd.exe
x64-Run: [Persistence] C:\Windows\System32\igfxpers.exe
x64-Run: [sysTrayApp] C:\Program Files\IDT\WDM\sttray64.exe
x64-Run: [synTPEnh] C:\Program Files (x86)\Synaptics\SynTP\SynTPEnh.exe
x64-RunOnce: [NCPluginUpdater] "C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe" Update
x64-IE: {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
x64-IE: {56753E59-AF1D-4FBA-9E15-31557124ADA2} - C:\Program Files\Classic Shell\ClassicIE_32.exe
x64-Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - <orphaned>
x64-Notify: igfxcui - igfxdev.dll
x64-SSODL: WebCheck - <orphaned>
.
============= SERVICES / DRIVERS ===============
.
R0 iaStorA;iaStorA;C:\Windows\System32\Drivers\iaStorA.sys [2012-9-28 650808]
R1 asdrm;asdrm;C:\Windows\System32\Drivers\asdrm.sys [2013-12-6 18768]
R2 asdrs;AntiMalware Host-based Intrusion Prevention System;C:\Windows\System32\Drivers\asdrs.sys [2013-12-6 23376]
R2 asdsrv;Anvi Smart Defender Realtime Guard Service;C:\Program Files (x86)\Anvisoft\Anvi Smart Defender\ASDSrv.exe [2013-10-20 742584]
R2 asdws;AnviSmartDefender Web Guard;C:\Windows\System32\Drivers\asdws.sys [2013-12-6 17232]
R2 HP Support Assistant Service;HP Support Assistant Service;C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe [2012-9-27 86528]
R2 HPConnectedRemote;HP Connected Remote Service;C:\Program Files (x86)\Hewlett-Packard\HP Connected Remote\HPConnectedRemoteService.exe [2012-10-12 35744]
R2 hpsrv;HP Service;C:\Windows\System32\hpservice.exe [2012-8-23 29600]
R2 HPWMISVC;HPWMISVC;C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe [2012-9-7 35232]
R2 IAStorDataMgrSvc;Intel® Rapid Storage Technology;C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe [2013-6-6 14904]
R2 IconMan_R;IconMan_R;C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe [2013-6-6 2451456]
R2 Intel® Capability Licensing Service Interface;Intel® Capability Licensing Service Interface;C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-4-20 635104]
R2 Intel® ME Service;Intel® ME Service;C:\Program Files (x86)\Intel\Intel® Management Engine Components\FWService\IntelMeFWService.exe [2013-6-6 128896]
R2 jhi_service;Intel® Dynamic Application Loader Host Interface Service;C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\Jhi_service.exe [2013-6-6 165760]
R2 MBAMScheduler;MBAMScheduler;C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [2013-12-5 418376]
R2 MBAMService;MBAMService;C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2013-12-5 701512]
R2 NIS;Norton Internet Security;C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\ccsvchst.exe [2013-12-2 144368]
R2 UNS;Intel® Management and Security Application User Notification Service;C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe [2013-6-6 364416]
R3 BHDrvx64;BHDrvx64;C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.0.0.136\Definitions\BASHDefs\20131203.001\BHDrvx64.sys [2013-12-3 1526488]
R3 ccSet_NIS;Norton Internet Security Settings Manager;C:\Windows\System32\Drivers\NISx64\1404000.028\ccsetx64.sys [2013-12-2 169048]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv;C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2013-12-2 137648]
R3 IDSVia64;IDSVia64;C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.0.0.136\Definitions\IPSDefs\20131227.001\IDSviA64.sys [2013-12-27 521944]
R3 IntcDAud;Intel® Display Audio;C:\Windows\System32\Drivers\IntcDAud.sys [2012-6-19 342528]
R3 MBAMProtector;MBAMProtector;C:\Windows\System32\Drivers\mbam.sys [2013-12-5 25928]
R3 RTL8168;Realtek 8168 NT Driver;C:\Windows\System32\Drivers\Rt630x64.sys [2013-6-6 690832]
R3 SmbDrvI;SmbDrvI;C:\Windows\System32\Drivers\Smb_driver_Intel.sys [2012-8-24 43832]
R3 SymDS;Symantec Data Store;C:\Windows\System32\Drivers\NISx64\1404000.028\symds64.sys [2013-12-2 493656]
R3 SymEFA;Symantec Extended File Attributes;C:\Windows\System32\Drivers\NISx64\1404000.028\symefa64.sys [2013-12-2 1139800]
R3 SymIRON;Symantec Iron Driver;C:\Windows\System32\Drivers\NISx64\1404000.028\ironx64.sys [2013-12-2 224416]
R3 SymNetS;Symantec Network Security WFP Driver;C:\Windows\System32\Drivers\NISx64\1404000.028\symnets.sys [2013-12-2 433752]
R3 WirelessButtonDriver;HP Wireless Button Driver Service;C:\Windows\System32\Drivers\WirelessButtonDriver64.sys [2012-8-31 20800]
R3 WSDScan;WSD Scan Support;C:\Windows\System32\Drivers\WSDScan.sys [2013-6-6 23552]
S0 SymELAM;Symantec ELAM Driver;C:\Windows\System32\Drivers\NISx64\1404000.028\symelam.sys [2013-12-2 23448]
S3 GamesAppService;GamesAppService;C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072]
S3 RSP2STOR;Realtek PCIE CardReader Driver - P2;C:\Windows\System32\Drivers\RtsP2Stor.sys [2013-6-6 269968]
S3 SmbDrv;SmbDrv;C:\Windows\System32\Drivers\Smb_driver_AMDASF.sys [2012-8-24 41272]
S3 USBAAPL64;Apple Mobile USB Driver;C:\Windows\System32\Drivers\usbaapl64.sys [2012-12-13 54784]
S3 WUDFWpdMtp;WUDFWpdMtp;C:\Windows\System32\Drivers\WUDFRd.sys [2012-7-25 198656]
.
=============== Created Last 30 ================
.
2013-12-28 04:18:25 -------- d-----w- C:\Users\fran0_000\AppData\Local\CyberLink
2013-12-26 04:21:31 -------- d-----w- C:\Windows\System32\MRT
2013-12-26 04:10:56 420864 ----a-w- C:\Windows\System32\WMPhoto.dll
2013-12-26 04:10:56 368640 ----a-w- C:\Windows\SysWow64\WMPhoto.dll
2013-12-26 04:10:15 26624 ----a-w- C:\Windows\System32\ReAgentc.exe
2013-12-26 04:10:15 24064 ----a-w- C:\Windows\SysWow64\ReAgentc.exe
2013-12-22 19:44:54 232112 ----a-w- C:\ProgramData\Microsoft\Windows\Sqm\Manifest\Sqm10228.bin
2013-12-22 19:35:02 1255936 ----a-w- C:\Windows\System32\certutil.exe
2013-12-22 19:35:01 141312 ----a-w- C:\Windows\System32\cryptnet.dll
2013-12-22 19:35:01 109056 ----a-w- C:\Windows\SysWow64\cryptnet.dll
2013-12-22 19:35:01 1013248 ----a-w- C:\Windows\SysWow64\certutil.exe
2013-12-22 19:33:59 77544 ----a-w- C:\Windows\System32\drivers\storahci.sys
2013-12-22 19:33:59 156160 ----a-w- C:\Windows\System32\powercfg.cpl
2013-12-22 19:33:59 145408 ----a-w- C:\Windows\SysWow64\powercfg.cpl
2013-12-22 19:33:59 117248 ----a-w- C:\Windows\System32\NdisImPlatform.dll
2013-12-22 19:33:58 71168 ----a-w- C:\Windows\System32\WSDPrintProxy.DLL
2013-12-22 19:33:58 49152 ----a-w- C:\Windows\System32\DevDispItemProvider.dll
2013-12-22 19:33:58 36352 ----a-w- C:\Windows\SysWow64\DevDispItemProvider.dll
2013-12-22 19:33:58 30720 ----a-w- C:\Windows\System32\drivers\monitor.sys
2013-12-22 19:33:58 26112 ----a-w- C:\Windows\System32\drivers\mouhid.sys
2013-12-22 19:33:58 235008 ----a-w- C:\Program Files\Windows NT\Accessories\WordpadFilter.dll
2013-12-22 19:33:58 195072 ----a-w- C:\Program Files (x86)\Windows NT\Accessories\WordpadFilter.dll
2013-12-22 19:33:47 595968 ----a-w- C:\Windows\System32\qedit.dll
2013-12-22 19:33:47 496640 ----a-w- C:\Windows\SysWow64\qedit.dll
2013-12-22 19:31:38 576512 ----a-w- C:\Windows\System32\drivers\afd.sys
2013-12-22 19:30:24 3552768 ----a-w- C:\Windows\System32\tquery.dll
2013-12-22 19:30:19 2107904 ----a-w- C:\Windows\System32\mssrch.dll
2013-12-22 19:30:17 2767360 ----a-w- C:\Windows\SysWow64\tquery.dll
2013-12-22 19:30:16 1593344 ----a-w- C:\Windows\SysWow64\mssrch.dll
2013-12-22 19:30:13 1829408 ----a-w- C:\Windows\System32\ntdll.dll
2013-12-22 19:30:09 1444864 ----a-w- C:\Windows\System32\MSAudDecMFT.dll
2013-12-22 19:30:00 1113600 ----a-w- C:\Windows\SysWow64\MSAudDecMFT.dll
2013-12-22 19:28:08 2035200 ----a-w- C:\Program Files\Common Files\Microsoft Shared\ink\InkObj.dll
2013-12-22 19:28:07 1617920 ----a-w- C:\Program Files\Windows Journal\NBDoc.DLL
2013-12-22 19:28:07 1413632 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\InkObj.dll
2013-12-22 19:28:07 1318912 ----a-w- C:\Program Files\Windows Journal\JNWDRV.dll
2013-12-22 19:28:07 1306112 ----a-w- C:\Program Files\Windows Journal\JNTFiltr.dll
2013-12-22 19:28:07 1272320 ----a-w- C:\Program Files\Common Files\Microsoft Shared\ink\journal.dll
2013-12-22 19:28:06 1455368 ----a-w- C:\Windows\System32\drivers\dxgkrnl.sys
2013-12-22 19:28:06 1029632 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\journal.dll
2013-12-22 19:27:17 83968 ----a-w- C:\Windows\System32\drivers\hidclass.sys
2013-12-22 19:27:17 32768 ----a-w- C:\Windows\System32\drivers\hidparse.sys
2013-12-22 19:27:17 27648 ----a-w- C:\Windows\System32\drivers\hidusb.sys
2013-12-22 19:27:17 25600 ----a-w- C:\Windows\System32\drivers\usbprint.sys
2013-12-22 19:25:58 411136 ----a-w- C:\Windows\SysWow64\mfmp4srcsnk.dll
2013-12-22 19:25:58 389632 ----a-w- C:\Windows\SysWow64\intl.cpl
2013-12-22 19:25:58 179712 ----a-w- C:\Windows\System32\bisrv.dll
2013-12-22 19:25:57 17408 ----a-w- C:\Windows\System32\muifontsetup.dll
2013-12-22 19:25:56 18432 ----a-w- C:\Windows\SysWow64\npmproxy.dll
2013-12-22 19:25:56 14336 ----a-w- C:\Windows\SysWow64\muifontsetup.dll
2013-12-16 05:03:16 70144 ----a-w- C:\Windows\System32\appinfo.dll
2013-12-16 05:03:16 112872 ----a-w- C:\Windows\System32\consent.exe
2013-12-16 03:47:03 733184 ----a-w- C:\Windows\System32\win32spl.dll
2013-12-16 02:13:56 2842112 ----a-w- C:\Windows\System32\WMVDECOD.DLL
2013-12-16 02:13:56 2620928 ----a-w- C:\Windows\SysWow64\WMVDECOD.DLL
2013-12-16 00:32:35 447320 ----a-w- C:\Windows\System32\drivers\USBHUB3.SYS
2013-12-16 00:32:35 337752 ----a-w- C:\Windows\System32\drivers\USBXHCI.SYS
2013-12-16 00:32:35 213336 ----a-w- C:\Windows\System32\drivers\UCX01000.SYS
2013-12-15 08:29:48 861184 ----a-w- C:\Windows\System32\drivers\http.sys
2013-12-15 06:47:28 2062848 ----a-w- C:\Windows\System32\d3d11.dll
2013-12-15 06:47:27 1711616 ----a-w- C:\Windows\SysWow64\d3d11.dll
2013-12-15 05:23:51 2382336 ----a-w- C:\Windows\SysWow64\esent.dll
2013-12-15 05:23:50 2851840 ----a-w- C:\Windows\System32\esent.dll
2013-12-14 23:57:51 23350272 ----a-w- C:\Program Files\Common Files\Microsoft Shared\Microsoft Camera Codec Pack\MicrosoftRawCodec.dll
2013-12-14 23:57:50 22615040 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\Microsoft Camera Codec Pack\MicrosoftRawCodec.dll
2013-12-14 23:57:04 997632 ----a-w- C:\Windows\System32\drivers\ndis.sys
2013-12-14 23:55:50 566784 ----a-w- C:\Windows\System32\wvc.dll
2013-12-14 23:54:42 7168 ----a-w- C:\Windows\System32\KBDKURD.DLL
2013-12-14 23:54:42 6656 ----a-w- C:\Windows\SysWow64\KBDKURD.DLL
2013-12-14 23:54:42 1184256 ----a-w- C:\Windows\System32\Display.dll
2013-12-14 23:54:42 1164800 ----a-w- C:\Windows\SysWow64\Display.dll
2013-12-14 23:17:59 30720 ----a-w- C:\Windows\System32\cryptdlg.dll
2013-12-14 23:17:59 25088 ----a-w- C:\Windows\SysWow64\cryptdlg.dll
2013-12-13 18:46:23 144896 ----a-w- C:\Windows\System32\tssdisai.dll
2013-12-13 18:46:23 135680 ----a-w- C:\Windows\System32\appserverai.dll
2013-12-13 18:46:23 126976 ----a-w- C:\Windows\System32\RDWebAI.dll
2013-12-13 18:46:23 122880 ----a-w- C:\Windows\System32\VmHostAI.dll
2013-12-13 18:46:20 148480 ----a-w- C:\Windows\System32\poqexec.exe
2013-12-13 18:46:20 132608 ----a-w- C:\Windows\SysWow64\poqexec.exe
2013-12-13 18:13:52 222720 ----a-w- C:\Windows\System32\scrobj.dll
2013-12-13 18:13:52 194048 ----a-w- C:\Windows\System32\scrrun.dll
2013-12-13 18:13:52 162304 ----a-w- C:\Windows\SysWow64\scrobj.dll
2013-12-13 18:13:52 156160 ----a-w- C:\Windows\SysWow64\scrrun.dll
2013-12-13 18:13:52 146944 ----a-w- C:\Windows\System32\cscript.exe
2013-12-13 18:13:52 143872 ----a-w- C:\Windows\System32\wshom.ocx
2013-12-13 18:13:52 115712 ----a-w- C:\Windows\SysWow64\cscript.exe
2013-12-13 18:13:46 4036608 ----a-w- C:\Windows\System32\win32k.sys
2013-12-13 18:09:22 62976 ----a-w- C:\Windows\System32\imagehlp.dll
2013-12-13 18:09:22 59392 ----a-w- C:\Windows\SysWow64\imagehlp.dll
2013-12-13 18:05:02 10116608 ----a-w- C:\Windows\System32\twinui.dll
2013-12-13 18:05:00 8858112 ----a-w- C:\Windows\SysWow64\twinui.dll
2013-12-13 18:04:58 2304512 ----a-w- C:\Windows\System32\authui.dll
2013-12-13 18:04:58 2146304 ----a-w- C:\Windows\System32\actxprxy.dll
2013-12-13 18:04:58 2035712 ----a-w- C:\Windows\SysWow64\authui.dll
2013-12-13 18:04:57 69864 ----a-w- C:\Windows\System32\drivers\pdc.sys
2013-12-13 17:57:54 3701760 ----a-w- C:\Windows\System32\drivers\athw8x.sys
2013-12-06 23:01:12 274432 ----a-w- C:\Windows\SysWow64\ssleay32.dll
2013-12-06 23:01:11 81920 ----a-w- C:\Windows\eSellerateControl350.dll
2013-12-06 23:01:11 356352 ----a-w- C:\Windows\eSellerateEngine.dll
2013-12-06 23:01:11 1122304 ----a-w- C:\Windows\SysWow64\libeay32.dll
2013-12-06 22:46:32 -------- d-----w- C:\Users\fran0_000\AppData\Roaming\Anvisoft
2013-12-06 22:46:16 23376 ----a-w- C:\Windows\System32\drivers\asdrs.sys
2013-12-06 22:46:16 18768 ----a-w- C:\Windows\System32\drivers\asdrm.sys
2013-12-06 22:46:16 17232 ----a-w- C:\Windows\System32\drivers\asdws.sys
2013-12-06 22:46:14 -------- d-----w- C:\ProgramData\Anvisoft
2013-12-06 22:46:10 -------- d-----w- C:\Program Files (x86)\Anvisoft
2013-12-05 09:06:01 -------- d-----w- C:\Users\fran0_000\AppData\Roaming\Malwarebytes
2013-12-05 09:05:43 -------- d-----w- C:\ProgramData\Malwarebytes
2013-12-05 09:05:41 25928 ----a-w- C:\Windows\System32\drivers\mbam.sys
2013-12-05 09:05:41 -------- d-----w- C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-12-05 08:41:44 -------- d-----w- C:\AdwCleaner
2013-12-05 08:24:58 -------- d-----w- C:\ProgramData\ClassicShell
2013-12-05 08:24:04 -------- d-----w- C:\Users\fran0_000\AppData\Roaming\ClassicShell
2013-12-05 08:23:40 -------- d-----w- C:\Program Files\Classic Shell
2013-12-05 07:28:01 -------- d-----w- C:\Users\fran0_000\AppData\Roaming\deluge
2013-12-05 07:14:10 -------- d-----w- C:\ProgramData\Updater
2013-12-05 07:14:10 -------- d-----w- C:\ProgramData\RHelpers
2013-12-05 07:12:06 -------- d-----w- C:\Users\fran0_000\AppData\Local\Programs
2013-12-05 07:11:49 -------- d-----w- C:\Users\fran0_000\AppData\Roaming\MyWordTool
2013-12-02 19:23:43 -------- d-----r- C:\Users\fran0_000\SkyDrive
2013-12-02 18:48:10 493656 ----a-w- C:\Windows\System32\drivers\NISx64\1404000.028\symds64.sys
2013-12-02 18:48:10 433752 ----a-w- C:\Windows\System32\drivers\NISx64\1404000.028\symnets.sys
2013-12-02 18:48:10 36952 ----a-w- C:\Windows\System32\drivers\NISx64\1404000.028\srtspx64.sys
2013-12-02 18:48:10 23448 ----a-r- C:\Windows\System32\drivers\NISx64\1404000.028\symelam.sys
2013-12-02 18:48:10 1139800 ----a-w- C:\Windows\System32\drivers\NISx64\1404000.028\symefa64.sys
2013-12-02 18:48:09 796760 ----a-w- C:\Windows\System32\drivers\NISx64\1404000.028\srtsp64.sys
2013-12-02 18:48:09 224416 ----a-w- C:\Windows\System32\drivers\NISx64\1404000.028\ironx64.sys
2013-12-02 18:48:09 169048 ----a-w- C:\Windows\System32\drivers\NISx64\1404000.028\ccsetx64.sys
2013-12-02 18:47:50 -------- d-----w- C:\Windows\System32\drivers\NISx64\1404000.028
2013-11-29 20:41:30 17536 ----a-w- C:\ProgramData\Microsoft\windowssampling\Sqm\Manifest\Sqm3.bin
2013-11-29 18:31:42 -------- d-----w- C:\ProgramData\Oracle
2013-11-29 18:31:32 96168 ----a-w- C:\Windows\SysWow64\WindowsAccessBridge-32.dll
2013-11-29 08:21:51 -------- d-----w- C:\Program Files (x86)\Common Files\Symantec Shared
2013-11-29 06:52:28 -------- d-----w- C:\Users\fran0_000\AppData\Local\Apple Computer
2013-11-29 06:52:21 33240 ----a-w- C:\Windows\System32\drivers\GEARAspiWDM.sys
2013-11-29 06:51:52 -------- d-----w- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2013-11-29 06:51:52 -------- d-----w- C:\Program Files\iTunes
2013-11-29 06:51:52 -------- d-----w- C:\Program Files\iPod
2013-11-29 06:51:52 -------- d-----w- C:\Program Files (x86)\iTunes
2013-11-29 06:51:07 -------- d-----w- C:\Users\fran0_000\AppData\Local\Apple
2013-11-29 06:50:12 99840 ----a-w- C:\Windows\System32\Spool\prtprocs\x64\CNMPPAR.DLL
2013-11-29 06:50:12 30208 ----a-w- C:\Windows\System32\Spool\prtprocs\x64\CNMPDAR.DLL
2013-11-29 06:50:04 385024 ----a-w- C:\Windows\System32\CNMLMAR.DLL
2013-11-29 06:42:31 -------- d-----w- C:\Users\fran0_000\AppData\Local\Google
2013-11-29 06:41:51 -------- d-----w- C:\Users\fran0_000\AppData\Local\Deployment
2013-11-29 06:41:51 -------- d-----w- C:\Users\fran0_000\AppData\Local\Apps
2013-11-29 06:40:42 -------- d-----w- C:\Users\fran0_000\AppData\Roaming\hpqlog
2013-11-29 06:39:02 50784 ----a-w- C:\ProgramData\Microsoft\windowsfiltering\Sqm\Manifest\Sqm3.bin
2013-11-29 06:37:21 -------- d-----w- C:\Users\fran0_000\AppData\Local\Hewlett-Packard
2013-11-29 06:36:09 -------- d-----w- C:\Users\fran0_000\AppData\Local\assembly
2013-11-29 06:36:09 -------- d-----r- C:\Users\fran0_000\Searches
2013-11-29 06:36:08 -------- d-----r- C:\Users\fran0_000\Contacts
2013-11-29 06:33:24 -------- d--h--w- C:\Users\fran0_000\AppData
2013-11-29 06:33:24 -------- d-----w- C:\Users\fran0_000\AppData\Local\Temp
2013-11-29 06:33:24 -------- d-----w- C:\Users\fran0_000\AppData\Local\Microsoft
2013-11-29 06:33:24 -------- d-----r- C:\Users\fran0_000\Videos
2013-11-29 06:33:24 -------- d-----r- C:\Users\fran0_000\Saved Games
2013-11-29 06:33:24 -------- d-----r- C:\Users\fran0_000\Pictures
2013-11-29 06:33:24 -------- d-----r- C:\Users\fran0_000\Music
2013-11-29 06:33:24 -------- d-----r- C:\Users\fran0_000\Links
2013-11-29 06:33:24 -------- d-----r- C:\Users\fran0_000\Downloads
2013-11-29 06:33:24 -------- d-----r- C:\Users\fran0_000\Documents
.
==================== Find3M  ====================
.
2013-12-04 00:53:54 78304 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2013-12-04 00:53:54 694240 ----a-w- C:\Windows\SysWow64\FlashPlayerApp.exe
2013-12-02 18:49:40 177312 ----a-w- C:\Windows\System32\drivers\SYMEVENT64x86.SYS
2013-11-01 05:38:21 312320 ----a-w- C:\Windows\System32\msieftp.dll
2013-11-01 03:49:24 273408 ----a-w- C:\Windows\SysWow64\msieftp.dll
2013-10-25 06:19:22 2241536 ----a-w- C:\Windows\System32\wininet.dll
2013-10-25 06:19:12 915968 ----a-w- C:\Windows\System32\uxtheme.dll
2013-10-25 06:17:57 3959808 ----a-w- C:\Windows\System32\jscript9.dll
2013-10-25 04:45:11 1767936 ----a-w- C:\Windows\SysWow64\wininet.dll
2013-10-25 04:43:42 2877952 ----a-w- C:\Windows\SysWow64\jscript9.dll
2013-10-21 01:47:24 329216 ----a-w- C:\Windows\System32\StartMenuHelper64.dll
2013-10-21 01:46:56 268288 ----a-w- C:\Windows\SysWow64\StartMenuHelper32.dll
2013-10-10 11:53:35 96600 ----a-w- C:\Windows\System32\drivers\wfplwfs.sys
2013-10-10 09:21:20 1160192 ----a-w- C:\Windows\System32\IKEEXT.DLL
2013-10-10 09:20:43 723968 ----a-w- C:\Windows\System32\BFE.DLL
2013-10-02 23:25:41 1300992 ----a-w- C:\Windows\System32\gdi32.dll
2013-10-01 23:37:57 1569280 ----a-w- C:\Windows\SysWow64\crypt32.dll
2013-10-01 23:26:49 1890816 ----a-w- C:\Windows\System32\crypt32.dll
2013-10-01 22:22:19 1022976 ----a-w- C:\Windows\SysWow64\gdi32.dll
.
============= FINISH: 20:38:47.06 ===============
 
 
.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2012-11-20.01)
.
Microsoft Windows 8
Boot Device: \Device\HarddiskVolume2
Install Date: 11/28/2013 10:34:19 PM
System Uptime: 12/27/2013 8:27:45 PM (0 hours ago)
.
Motherboard: Hewlett-Packard |  | 18FC
Processor: Intel® Celeron® CPU 877 @ 1.40GHz | U3E1 | 1400/100mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 437 GiB total, 385.676 GiB free.
D: is FIXED (NTFS) - 28 GiB total, 3.27 GiB free.
.
==== Disabled Device Manager Items =============
.
==== System Restore Points ===================
.
RP6: 12/6/2013 5:27:19 PM - HPSF Applying updates
RP7: 12/13/2013 9:48:27 AM - HPSF Applying updates
RP8: 12/17/2013 12:05:38 AM - Windows Update
RP9: 12/23/2013 1:07:02 AM - Windows Update
.
==== Installed Programs ======================
.
4 Elements II
Adobe Shockwave Player 11.6
Airport Mania
Anvi Smart Defender 1.9.3
Apple Application Support
Apple Mobile Device Support
Apple Software Update
Azteca
Bejeweled 3
Bonjour
Bounce Symphony
Build-a-lot
Classic Shell
CyberLink Media Suite 10
CyberLink PhotoDirector
CyberLink PowerDirector 10
CyberLink PowerDVD
CyberLink YouCam
D3DX10
Energy Star
FATE: The Cursed King
Final Drive Fury
Google Chrome
Google Update Helper
Hewlett-Packard ACLM.NET v1.2.1.1
Hoyle Card Games
HP 3D DriveGuard
HP Connected Music (Meridian - installer)
HP Connected Remote
HP CoolSense
HP Customer Experience Enhancements
HP Documentation
HP Games
HP MyRoom
HP Postscript Converter
HP Quick Launch
HP Recovery Manager
HP Registration Service
HP Support Assistant
HP Utility Center
HP Wireless Button Driver
IDT Audio
Intel® Control Center
Intel® Management Engine Components
Intel® Processor Graphics
Intel® Rapid Storage Technology
Intel® SDK for OpenCL - CPU Only Runtime Package
Intel® Trusted Connect Service Client
iTunes
Java 7 Update 45
Java Auto Updater
Jewel Match 3
John Deere Drive Green
Letters from Nowhere 2
Mah Jong Medley
Malwarebytes Anti-Malware version 1.75.0.1300
Microsoft Application Error Reporting
Microsoft Office
Microsoft SkyDrive
Microsoft SQL Server 2005 Compact Edition [ENU]
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219
Movie Maker
MSVCRT
MSVCRT110
MSVCRT110_amd64
Mystery of Mortlake Mansion
Norton Internet Security
Penguins!
Photo Common
Photo Gallery
Polar Bowler
Polar Golfer
Qualcomm Atheros Driver Installation Program
Realtek Ethernet Controller Driver
Realtek PCIE Card Reader
Roads of Rome 3
Snap.Do
Snap.Do Engine
swMSM
Synaptics Pointing Device Driver
The Treasures of Mystery Island: The Ghost Ship
Tube Dimmer
Update Installer for WildTangent Games App
Updater
WildTangent Games
WildTangent Games App
Windows Live Communications Platform
Windows Live Essentials
Windows Live Installer
Windows Live Photo Common
Windows Live PIMT Platform
Windows Live SOXE
Windows Live SOXE Definitions
Windows Live UX Platform
Windows Live UX Platform Language Pack
Zuma's Revenge
.
==== Event Viewer Messages From Past Week ========
.
12/26/2013 1:17:22 PM, Error: Service Control Manager [7001]  - The Windows Media Player Network Sharing Service service depends on the Windows Search service which failed to start because of the following error:  The process cannot access the file because it is being used by another process.
12/26/2013 1:17:22 PM, Error: Service Control Manager [7000]  - The Windows Search service failed to start due to the following error:  The process cannot access the file because it is being used by another process.
12/26/2013 1:16:40 PM, Error: Microsoft-Windows-DistributedCOM [10005]  - DCOM got error "32" attempting to start the service WSearch with arguments "Unavailable" in order to run the server: {9E175B6D-F52A-11D8-B9A5-505054503030}
12/26/2013 1:16:27 PM, Error: Service Control Manager [7023]  - The Security Center service terminated with the following error:  The process cannot access the file because it is being used by another process.
.
==== End Of File ===========================
 
 
Link to post
Share on other sites

Hello and post-32477-1261866970.gif

 

P2P/Piracy Warning:

 

 

 

   

If you're using Peer 2 Peer software such as uTorrent, BitTorrent or similar you must either fully uninstall them or completely disable them from running while being assisted here.

Failure to remove or disable such software will result in your topic being closed and no further assistance being provided.

If you have illegal/cracked software, cracks, keygens etc. on the system, please remove or uninstall them now and read the policy on Piracy.

 

Next,

 

Download Zoek.zip from here http://www.hijackthis.nl/smeenk/220813/zoek.zip and save that zip file to your Desktop.

 

Double click zip file and extract to your  Desktop:

 

 

Zoekd.jpg

 

 

you will now have 3 versions of the tool on the Desktop:

 

 

Zoeke.jpg

 

Before running Zoek make sure all Browsers are closed and Security is turned OFF. Check at the following link: http://www.bleepingcomputer.com/forums/t/114351/how-to-temporarily-disable-your-anti-virus-firewall-and-anti-malware-programs/

 

Double click on each in turn until one version of Zoek will run (accept UAC) The following window will open:

 

 

Zoekb.jpg

 

 

Copy and paste the following script from the code box and paste into the field.

 

 

standardsearch;autoruns;autoclean;emptyclsid;emptyalltemp;installedprogs;  

 

 

Select the "Run Script" tab. The following window will open:

 

 

 

Zoekc.jpg

 

 

 

Please be patient and do not use the PC when the scan is in progress.

 

When complete you maybe asked to re-boot your PC, if so please do

 

Zoekf.jpg

 

Post the produced log in your next reply…..

 

Kevin

Link to post
Share on other sites

The two following entries show in the UNinstall list:

 

Snap.Do  
Snap.Do Engine

 

See if they will uninstall, select start, into the search box type "programs and features" tap enter, Select each in turn from the list, then "uninstall"

 

If any trouble try with RevoUninstaller:

 

Please download and install Revo Uninstaller Free

 

  • Double click Revo Uninstaller to run it.
  • From the list of programs double click on The Program to remove
  • When prompted if you want to uninstall click Yes.
  • Be sure the Moderate option is selected then click Next.
  • The program will run, If prompted again click Yes
  • When the built-in uninstaller is finished click on Next.
  • Once the program has searched for leftovers click Next.
  • Check/tick the bolded items only on the list then click Delete
  • When prompted click on Yes and then on next.
  • Put a check on any folders that are found and select delete
  • When prompted select yes then on next
  • Once done click Finish.

 

Next,

 

Re-run Zoek as before. (accept UAC) The following window will open:

 

 

Zoekb.jpg

 

 

Copy and paste the following script from the code box and paste into the field.

 

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows];r"AppInit_DLLs"=;r

 

 

Select the "Run Script" tab. The following window will open:

 

 

 

Zoekc.jpg

 

 

 

Please be patient and do not use the PC when the scan is in progress.

 

When complete you maybe asked to re-boot your PC, if so please do

 

Zoekf.jpg

 

Post the produced log in your next reply…..

 

Next,

 

Run Malwarebytes,  Open > Settings Tab > Scanner Settings > Under action for PUP > Select: Show in Results List and Check for removal.

Please Update and run a Full scan

Make sure that everything is checked, and click Remove Selected on any found items.

 

Post the produced logs, let me know if any remaining issues or concerns...

 

Kevin

Link to post
Share on other sites

Ok, leave that step and continue with the other two...

 

Also run this please:

 

Download AdwCleaner by Xplode from here: http://www.bleepingcomputer.com/download/adwcleaner/ and save to your Desktop.

 

  • Double click on AdwCleaner.exe to run the tool.
  • Vista/Windows 7/8 users right-click and select Run As Administrator
  • Click on the Scan button.
  • AdwCleaner will begin...be patient as the scan may take some time to complete.
  • When it's done you'll see: Pending: Uncheck any elements you don't want removed.
  • Now click on the Report button...a logfile (AdwCleaner[R0].txt) will open in Notepad for review.
  • Look over the log especially under Files/Folders for any program you want to save.
  • If there's a program you want to save, just uncheck it from AdwCleaner.
  • If you're not sure, post the log for review.
  • If you're ready to clean it all up.....click the Clean button.
  • After rebooting, a logfile report (AdwCleaner[s0].txt) will open automatically.
  • Copy and paste the contents of that logfile in your next reply.
  • A copy of that logfile will also be saved in the C:\AdwCleaner folder.
  • Items that are deleted are moved to the Quarantine Folder: C:\AdwCleaner\Quarantine
  • To restore an item that has been deleted (if necessary):
  • Go to Tools > Quarantine Manager > check what you want restored > now click on Restore.

 

Post those logs, also give update on current issues/concerns...

 

Thanks,

 

Kevin

Link to post
Share on other sites

  • Root Admin

Due to the lack of feedback this topic is closed to prevent others from posting here. If you need this topic reopened, please send a Private Message to any one of the moderating team members. Please include a link to this thread with your request. This applies only to the originator of this thread.

Other members who need assistance please start your own topic in a new thread. Thanks!

Link to post
Share on other sites

Guest
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.